Overview

At a high-level, this service replicates your resources in a failover site to help you:

Troubleshoot during an outage in your primary data center

Meet compliance requirements

This service replicates the following resources from your production environment into the failover site:

Resource type

Specific components

Infrastructure

Workloads

Virtual machines

Networking

IP addresses

L2L VPN

SSL/VPN

Security

Malware protection

File Integrity Monitoring

Patching

Log Management

If there is an outage in your primary data center, and you continue to work with your infrastructure in the failover site, then any modifications you make will be not replicated in the primary data center once the outage has been resolved.

Typically, the failover site is the closest data center to your primary data center. Currently, Armor offers this service in the following locations:

Primary data center

Default failover site

Dallas (DFW01)

Phoenix (PHX01)

Phoenix (PHX01)

Dallas (DFW01)

Prerequisites

Before your order this add-on product, consider the following scenarios:

In Gen 3 (my.armor.com), you were able to access your virtual machine via the Cisco AnyConnect Secure Mobility Client. In Gen 4 (amp.armor.com), you can only access virtual machines via the VMwareTRAY SSL VPN-Plus Client. Even after you upgrade to Gen 4, you can still use the Cisco to access your transferred virtual; machines; however, for a virtual machine that is replicated to the failover site, you can only access that virtual machine via the VMware client. In short, Armor recommends that you use the VMware client to access your virtual machines.

Even during a data center outage, you must submit a support ticket to Armor to request a live failover.

Any changes you make in your virtual machine while in the replication site will not be transferred over to the primary site at the end of the failover.

Based on the size of your environment, first-time provisioning for this add-on product can take up to two days to complete.

Based on the size of your environment, a failover may take

Order Continuous Server Replication (Disaster Recovery)

You can order Continuous Server Replication (Disaster Recovery) from the Virtual Machine Details screen in the Armor Management Portal (AMP).

In the Armor Management Portal (AMP), on the left-side navigation, click Infrastructure.

Click Virtual Machines.

Locate and select the desired virtual machine.

Next to the virtual machine name, click the gear icon.

Select Add Continuous Replication.

In the drop-down menu, confirm the desired virtual machine.

Review the information, including pricing information, and then select Submit.

For first-time users, it may take up to two business days for this add-on product to be fully provisioned in your account. After this first-time provisioning process, additional provisioning will only take 30 minutes to complete.

To confirm that this service was activated:

Return to the Virtual Machine Details screen for the desired virtual machine.

Click the Continuous Server Replication tab.

Review the status for Server Replication.

(Optional) Armor recommends that after your add-on product has been fully provisioned, you should request a test failover, simply to verify the service.

Request and view a test failover

You can request a test failover to meet compliance requirements or to verify that the add-on product was successfully provisioned.

After a successful test failover, you can view and confirm the test failover in the Armor Management Portal (AMP).

During a test failover, Armor recommends that you do not make any changes to your virtual machine in the failover site. Any change you make will not replicated in the primary site.

In the Armor Management Portal (AMP), on the left-side navigation, click Support.

Click Tickets + Notifications.

Click New Ticket.

In Ticket Subject, enter Request for a Test Failover.

(Optional) In Add Recipient, enter the name or username of additional recipients to add to the ticket, and then select the name.

In Ticket Explanation, enter the name of the corresponding virtual machine.

Click Create Ticket.

To view the status of your ticket, in the left-side navigation, click Support, and then click Tickets + Notifications.

Armor Support will update the ticket when the test failover is complete.

On the left-side navigation, click Infrastructure.

Click Virtual Machines.

The failover will be listed in the table. The name of this virtual machine will include the name of the original virtual machine, along with Test added to the title.

For example, if the name of the virtual machine is My Company, then the failover virtual machine will appear as My Company - Test.

Click the Test virtual machine.

Next to Region, the data center will list the secondary data center (the location for the disaster recovery for your virtual machine).

Under Storage, the disk is tagged with Disaster Recovery.

The Continuous Server Replication tab will not appear in the failover virtual machine.

(Optional) To access the virtual machine in the failover site, you must download and install the Gen 4 SSL/VPN client for the failover site.

You cannot use the Gen 3 (Cisco AnyConnect) client to connect to the virtual machine in the failover site; you must use the Gen 4 (VMware) client.

You must have the Read Server Replication and Write Server Replication permissions enabled. Contact your account administrator to enable this permission. To learn how to update you permissions, see Roles and Permissions (Armor Complete).

Frequently asked questions

In short, how do I request failover?

First, you need to order Continuous Server Replication (Disaster Recovery) in the Armor Management Portal (AMP). Once this add-on product has been fully provisioned, you can simply submit a support ticket to request a test failover or a live failover. In both cases, Armor Support will coordinate with you to establish timelines.

To learn more about how to order this add-on product, as well as request a failover, see .

What are the requirements for requesting a disaster recovery?

How long does it take my for environment to be replicated in the failover site?

If I make any changes while working in the failover site, will those changes be reflected in the primary data site?

If my primary data center is down, does Armor automatically revert my environment into the failover site, or do I need to submit a request?

If I am simply performing a test failover for compliance reasons, how do I return to my primary data center?

While working in my failover site, can I manage my firewall rules?

How do I access my virtual machines while working in my failover site?